Local users can execute commands as other users, and read other users' files, through the filter command in the Elm elm-2.4 mail package using a symli...
Netscape FastTrack Web server lists files when a lowercase "get" command is used instead of an uppercase GET.
Denial of service through Solaris 2.5.1 telnet by sending ^D characters.
Excite for Web Servers (EWS) allows remote command execution via shell metacharacters.
Denial of service to NT mail servers including Ipswitch, Mdaemon, and Exchange through a buffer overflow in the SMTP HELO command.
AAA authentication on Cisco systems allows attackers to execute commands without authorization.
Buffer overflow in Internet Explorer 4.0(1).
Buffer overflow in the Linux mail program "deliver" allows local users to gain root access.
gcc 2.7.2 allows local users to overwrite arbitrary files via a symlink attack on temporary .i, .s, or .o files.
ICMP messages to broadcast addresses are allowed, allowing for a Smurf attack that can cause a denial of service.
DIT TransferPro installs devices with world-readable and world-writable permissions, which could allow local users to damage disks through the ff devi...
AIX routed allows remote users to modify sensitive files.
Buffer overflow in cidentd ident daemon allows local users to gain root privileges via a long line in the .authlie script.
sudo 1.5.x allows local users to execute arbitrary commands via a .. (dot dot) attack.
Progressive Networks Real Video server (pnserver) can be crashed remotely.
pnserver in RealServer 5.0 and earlier allows remote attackers to cause a denial of service by sending a short, malformed request.
Unauthorized privileged access or denial of service via dtappgather program in CDE.
Vulnerability in digest in AIX 4.3 allows printq users to gain root privileges by creating and/or modifing any file on the system.
Stolen credentials from SSH clients via ssh-agent program, allowing other local users to access remote accounts belonging to the ssh-agent user.
Buffer overflow in SGI IRIX mailx program.
htmlscript CGI program allows remote read access to files.